No more typing reviews! Try our Samantha, our new voice AI agent.

Elastic Observability vs Falcon LogScale comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Elastic Observability
Ranking in Log Management
14th
Average Rating
8.0
Reviews Sentiment
6.8
Number of Reviews
29
Ranking in other categories
Application Performance Monitoring (APM) and Observability (10th), IT Infrastructure Monitoring (16th), Container Monitoring (5th), Cloud Monitoring Software (11th)
Falcon LogScale
Ranking in Log Management
17th
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
9
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Log Management category, the mindshare of Elastic Observability is 1.3%, down from 1.5% compared to the previous year. The mindshare of Falcon LogScale is 0.8%, up from 0.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Log Management Mindshare Distribution
ProductMindshare (%)
Elastic Observability1.3%
Falcon LogScale0.8%
Other97.9%
Log Management
 

Featured Reviews

Mohammed-Abdelalim - PeerSpot reviewer
Assistant Vice President at QualityKiosk Technologies Pvt. Ltd.
Has provided powerful customization for unique monitoring needs but needs more out-of-the-box capabilities
In my opinion, the best features of Elastic Observability are their flexibility to integrate with other existing systems and the ability to build a unified monitoring tool that can integrate with existing ones and end-to-end user journeys which require a lot of customizations. The greatest feature in Elastic is the ability to customize. This is similar to my comments about customizable dashboards in Elastic because it's visible to the analyst. However, it's very great. Customizing these dashboards can meet the customer's specific use cases and specific stories that they have in their environment, their special environment that doesn't look like other environments. The dashboarding in Elastic is highly customizable to the level of logos. If the customer wants his company logo in the dashboard, it can be done.
Oluwajuwon Olorunlona - PeerSpot reviewer
Cyber Security Engineer at eprocessconsulting
Advanced threat hunting has improved visibility and has simplified custom query automation
CrowdStrike is ahead of the game. If I may say anything about Falcon LogScale to improve the services, I would talk about the way you develop parsers. The documentation should be more straightforward. It is not easy to quickly find the documentation, especially if you are using CrowdStrike. Most customers use Falcon LogScale because of CrowdStrike. The documentation of Falcon LogScale is not on the CrowdStrike portal just like the rest of Falcon documentation. I usually find that the main Falcon LogScale documentation is found on the Falcon LogScale website itself. I think there should be a link or direct documentation within the CrowdStrike pages. It is not necessarily a fault. If you find where the documentation resides, you can trace it to what they are doing. However, for the ease of use for Falcon administrators, the same documentation on the Falcon LogScale portal should be on the CrowdStrike dashboard.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"In addition to the fact that we are more proactive in the detection of incident before they occur, we can on one click see the request path from the customer to the backend."
"The customizable dashboards in Elastic Observability allow us to group relevant data to specific aspects of our solution, giving us around 20 interlinked dashboards which provide an overview, and if one aspect shows weird behavior, we can focus on that specific aspect of our software with a dedicated dashboard."
"Elastic APM has plenty of features, such as the Elastic server for Kibana and many additional plugins. It's a comprehensive tool when used as a logging platform."
"Elastic Observability significantly improves incident response time by providing quick access to logs and data across various sources. For instance, searching for specific keywords in logs spanning over a month from multiple data sources can be completed within seconds."
"We use AppDynamics and Elastic, and the reason why we're using Elastic APM is because of the license count; it's very favorable compared to AppDynamics, inexpensive, and economical."
"The most valued feature of Elastic is its log analytics capabilities."
"The tool's most valuable feature is centralized logging. Elastic Common Search helps us to search for the logs across the organization."
"It is scalable and supports multitenancy, which is beneficial for MSPs."
"Falcon LogScale stores logs without heavy indexing and searches directly, making it very fast."
"The biggest advantages of Falcon LogScale are the speed at which the queries return to you and the ease of use."
"I have only heard the best about CrowdStrike's support."
"Falcon LogScale offers excellent features, with scalability being the most notable, and the search speed stands out to me as particularly good."
"Falcon LogScale's insights give you a lot of information that an expert already thought would be valuable for you."
"It offers the capability to view live log ingestion directly from the console which means you can seamlessly manage live log data ingestion alongside accessing and analyzing older data from the past."
"Falcon LogScale seems to be a better option with better visibility when it comes to the dashboard and the kill chain process, including the attack surface."
"The fast search and index-free data retention are very valuable."
 

Cons

"When I go to the portal, I do not see many insights on the endpoints or where there could be latencies."
"Elastic Observability could improve asset discovery as the current requirement to push the agent is not ideal."
"If we had some pre-defined templates for observability that we could start using right away after deploying it – instead of having to build or to change some of the dashboards – that would be helpful."
"Elastic APM's visualization is not that great compared to other tools. It's number of metrics is very low."
"The solution would be better if it was capable of more automation, especially in a monitoring capacity or for the response to abnormalities."
"The solution needs to use more AI. Once the product onboards AI, users would more effectively be able to track endpoints for specific messages."
"The solution would be better if it was capable of more automation, especially in a monitoring capacity or for the response to abnormalities."
"They need more skills in the market. There are not enough skills in the market. It is not pervasive enough on the market, in my opinion. In other words, there isn't a big enough user base."
"There are some overlapping features found in multiple tools."
"One more point about areas for improvement is the visualization depth. Splunk, which I used, has very good visualization compared to Falcon LogScale."
"That is a difficult question regarding Falcon LogScale. That is really a question for the professionals, and I am not a professional, so I do not know."
"KQL is a bit challenging for us."
"The price could be lower."
"One area of Falcon LogScale that I think could be improved is that it is a bit complex."
"The integration could improve."
"CrowdStrike support is not good."
 

Pricing and Cost Advice

"We will buy a premium license after POC."
"Elastic Observability is cheaper than other similar solutions, such as Dynatrace. Its license calculation is based on various factors like data volume and physical infrastructure, particularly related to RAM capacity."
"The product is not that cheap."
"One needs to pay for the licenses, and it is an annual subscription model right now."
"The product’s pricing needs improvement."
"Users have to pay for some features, like the alerts on different channels, because they are unavailable in different source versions."
"The price of Elastic Observability is expensive."
"We have been using the open-source version."
Information not available
report
Use our free recommendation engine to learn which Log Management solutions are best for your needs.
886,719 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
15%
Computer Software Company
12%
Manufacturing Company
7%
Government
7%
Computer Software Company
16%
Manufacturing Company
11%
Comms Service Provider
7%
Healthcare Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise16
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise2
 

Questions from the Community

What is your experience regarding pricing and costs for Elastic Observability?
The problem is their licensing model, which is a bit confusing. Many customers struggle to understand their total cost of ownership because Elastic licensing is not dependent on easy, quantifiable ...
What needs improvement with Elastic Observability?
After careful consideration about areas for improvement in Elastic Observability, aspects such as pricing, customization, implementation, and scalability could be improved. As a user of the system,...
What is your primary use case for Elastic Observability?
My use case for Elastic Observability is observability, as we upload our customers' data, including logs, and when there is an issue, we can analyze what went wrong.
What needs improvement with Falcon LogScale?
CrowdStrike is ahead of the game. If I may say anything about Falcon LogScale to improve the services, I would talk about the way you develop parsers. The documentation should be more straightforwa...
What is your primary use case for Falcon LogScale?
I primarily use CrowdStrike, along with some other solutions. I have been using Falcon LogScale for approximately a year now.I like Falcon LogScale for threat hunting primarily. I use it to make qu...
What advice do you have for others considering Falcon LogScale?
I am also involved with Airlock and sometimes use Airlock application control too. One of the requirements is to have a SIEM. For you to be able to have visibility into everything going on in your ...
 

Overview

 

Sample Customers

PSCU, Entel, VITAS, Mimecast, Barrett Steel, Butterfield Bank
Information Not Available
Find out what your peers are saying about Elastic Observability vs. Falcon LogScale and other solutions. Updated: April 2026.
886,719 professionals have used our research since 2012.